2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-49615HIGH8.7Improper input validation in some Intel(R) System Security Report and System Resources Defense firmware may allow a priv...
CVE-2023-49603HIGH8.7Race condition in some Intel(R) System Security Report and System Resources Defense firmware may allow a privileged user...
CVE-2023-48267HIGH8.6Improper buffer restrictions in some Intel(R) System Security Report and System Resources Defense firmware may allow a p...
CVE-2023-43758HIGH8.7Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enabl...
CVE-2023-34440HIGH8.7Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enabl...
CVE-2023-31276HIGH8.4Heap-based buffer overflow in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R...
CVE-2023-29164HIGH7.3Improper access control in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R) S...
CVE-2023-31345HIGH7.5Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to ...
CVE-2023-31343HIGH7.5Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to ...
CVE-2023-31342HIGH7.5Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to ...
CVE-2023-31361HIGH7.3A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attac...
CVE-2023-31360HIGH7.3Incorrect default permissions in the AMD Integrated Management Technology (AIM-T) Manageability Service installation dir...
CVE-2023-6386HIGH7.5A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16....
CVE-2023-40222HIGH8.4In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of ...
CVE-2023-39943HIGH8.4In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of ...
CVE-2023-52163HIGH8.8Digiever DS-2105 Pro 3.1.0.71-11 devices allow time_tzsetup.cgi Command Injection. NOTE: This vulnerability only affects...
CVE-2023-38739HIGH8.8IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site request forg...
CVE-2023-29080HIGH8.5Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021 R2 due to adding Instal...
CVE-2023-38716HIGH7.5IBM Cloud Pak System 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could disclose sensitive ...
CVE-2023-38714HIGH7.5IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ...
CVE-2023-38713HIGH7.5IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ...
CVE-2023-38013HIGH7.5IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ...
CVE-2023-37023HIGH8.6Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `Uplink NAS Transport` packet handler. A packet missi...
CVE-2023-37022HIGH7.5Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `UE Context Release Request` packet handler. A packet...
CVE-2023-37021HIGH8.6Open5GS MME version <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now